Oval Definition:oval:org.opensuse.security:def:57182
Revision Date:2021-03-17Version:1
Title:Security update for the Linux Kernel (Live Patch 37 for SLE 12 SP3) (Important)
Description:

This update for the Linux Kernel 4.4.180-94_138 fixes several issues.

The following security issues were fixed:

- CVE-2020-27786: Fixed a potential user after free which could have led to memory corruption or privilege escalation (bsc#1179616). - CVE-2020-28374: Fixed insufficient identifier checking in the LIO SCSI target code which could have been used by remote attackers to read or write files via directory traversal in an XCOPY request (bsc#1178684). - CVE-2020-25645: Fixed an issue where the traffic between two Geneve endpoints may have been unencrypted when IPsec was configured to encrypt traffic for the specific UDP port used by the GENEVE tunnel allowing anyone between the two endpoints to read the traffic unencrypted (bsc#1177513). - CVE-2020-0429: Fixed a potential memory corruption due to a use after free which could have led local escalation of privilege with System execution privileges needed (bsc#1176931). - CVE-2020-1749: Fixed an issue in some networking protocols in IPsec, such as VXLAN and GENEVE tunnels over IPv6 where the kernel was not correctly routing tunneled data over the encrypted link rather sending the data unencrypted (bsc#1165631).
Family:unixClass:patch
Status:Reference(s):1034849
1047178
1057721
1057724
1071471
1073625
1073626
1073629
1076017
1083488
1085114
1085447
1087082
1087083
1090036
1090338
1096141
1096740
1100147
1106923
1107832
1108835
1108963
1109252
1110233
1110445
1111278
1112024
1113083
1113632
1113665
1135902
1140402
1142880
1142882
1142883
1142885
1143794
1161998
1165631
1170603
1173991
1174284
1175686
1176931
1177513
1178684
1179616
843509
999735
CVE-2009-0368
CVE-2010-4523
CVE-2013-2061
CVE-2017-12837
CVE-2017-12883
CVE-2017-13166
CVE-2017-15868
CVE-2017-17785
CVE-2017-17786
CVE-2017-17788
CVE-2017-3289
CVE-2017-3509
CVE-2017-3511
CVE-2017-3512
CVE-2017-3514
CVE-2017-3526
CVE-2017-3533
CVE-2017-3539
CVE-2017-3544
CVE-2017-6512
CVE-2018-1000004
CVE-2018-1000199
CVE-2018-1068
CVE-2018-14633
CVE-2018-14634
CVE-2018-15686
CVE-2018-15688
CVE-2018-17182
CVE-2018-3639
CVE-2018-3640
CVE-2018-3665
CVE-2018-7566
CVE-2019-12155
CVE-2019-13164
CVE-2019-14232
CVE-2019-14233
CVE-2019-14234
CVE-2019-14235
CVE-2019-14378
CVE-2020-0429
CVE-2020-12268
CVE-2020-15663
CVE-2020-15664
CVE-2020-15670
CVE-2020-1749
CVE-2020-25645
CVE-2020-27786
CVE-2020-28374
SUSE-SU-2017:1400-1
SUSE-SU-2017:3092-1
SUSE-SU-2018:0267-1
SUSE-SU-2018:1034-1
SUSE-SU-2018:1508-1
SUSE-SU-2018:1935-1
SUSE-SU-2018:1945-1
SUSE-SU-2018:3767-1
SUSE-SU-2019:2180-1
SUSE-SU-2019:2221-1
SUSE-SU-2020:0601-1
SUSE-SU-2020:1212-1
SUSE-SU-2020:2544-1
SUSE-SU-2021:0835-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Desktop 11 SP2
SUSE Linux Enterprise Desktop 12 SP4
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 12 SP1-LTSS
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud Crowbar 8
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • elfutils-0.168-lp150.2 is installed
  • OR elfutils-lang-0.168-lp150.2 is installed
  • OR libasm1-0.168-lp150.2 is installed
  • OR libdw1-0.168-lp150.2 is installed
  • OR libdw1-32bit-0.168-lp150.2 is installed
  • OR libebl-plugins-0.168-lp150.2 is installed
  • OR libebl-plugins-32bit-0.168-lp150.2 is installed
  • OR libelf1-0.168-lp150.2 is installed
  • OR libelf1-32bit-0.168-lp150.2 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • cron-4.2-lp151.4.3 is installed
  • OR cronie-1.5.1-lp151.4.3 is installed
  • OR cronie-anacron-1.5.1-lp151.4.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP2 is installed
  • AND openvpn-2.0.9-143.33.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP4 is installed
  • AND Package Information
  • gimp-2.8.18-9.8 is installed
  • OR gimp-lang-2.8.18-9.8 is installed
  • OR gimp-plugins-python-2.8.18-9.8 is installed
  • OR libgimp-2_0-0-2.8.18-9.8 is installed
  • OR libgimpui-2_0-0-2.8.18-9.8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND Package Information
  • java-1_7_0-openjdk-1.7.0.141-42 is installed
  • OR java-1_7_0-openjdk-demo-1.7.0.141-42 is installed
  • OR java-1_7_0-openjdk-devel-1.7.0.141-42 is installed
  • OR java-1_7_0-openjdk-headless-1.7.0.141-42 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1-LTSS is installed
  • AND Package Information
  • kgraft-patch-3_12_74-60_64_66-default-2-2 is installed
  • OR kgraft-patch-3_12_74-60_64_66-xen-2-2 is installed
  • OR kgraft-patch-SLE12-SP1_Update_23-2-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND opensc-0.13.0-1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • MozillaFirefox-60.7.0-109.72 is installed
  • OR MozillaFirefox-devel-60.7.0-109.72 is installed
  • OR MozillaFirefox-translations-common-60.7.0-109.72 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • java-1_7_0-openjdk-1.7.0.181-43.15 is installed
  • OR java-1_7_0-openjdk-demo-1.7.0.181-43.15 is installed
  • OR java-1_7_0-openjdk-devel-1.7.0.181-43.15 is installed
  • OR java-1_7_0-openjdk-headless-1.7.0.181-43.15 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_121-92_73-default-2-2 is installed
  • OR kgraft-patch-SLE12-SP2_Update_21-2-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND dnsmasq-2.76-17 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • java-1_7_1-ibm-1.7.1_sr4.65-38.53 is installed
  • OR java-1_7_1-ibm-alsa-1.7.1_sr4.65-38.53 is installed
  • OR java-1_7_1-ibm-devel-1.7.1_sr4.65-38.53 is installed
  • OR java-1_7_1-ibm-jdbc-1.7.1_sr4.65-38.53 is installed
  • OR java-1_7_1-ibm-plugin-1.7.1_sr4.65-38.53 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND kgraft-patch-4_4_180-94_138-default-2-2.2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • libSoundTouch0-1.7.1-5.3 is installed
  • OR soundtouch-1.7.1-5.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • rsyslog-8.24.0-3.19 is installed
  • OR rsyslog-diag-tools-8.24.0-3.19 is installed
  • OR rsyslog-doc-8.24.0-3.19 is installed
  • OR rsyslog-module-gssapi-8.24.0-3.19 is installed
  • OR rsyslog-module-gtls-8.24.0-3.19 is installed
  • OR rsyslog-module-mysql-8.24.0-3.19 is installed
  • OR rsyslog-module-pgsql-8.24.0-3.19 is installed
  • OR rsyslog-module-relp-8.24.0-3.19 is installed
  • OR rsyslog-module-snmp-8.24.0-3.19 is installed
  • OR rsyslog-module-udpspoof-8.24.0-3.19 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND Package Information
  • libsystemd0-228-150.53 is installed
  • OR libsystemd0-32bit-228-150.53 is installed
  • OR libudev1-228-150.53 is installed
  • OR libudev1-32bit-228-150.53 is installed
  • OR systemd-228-150.53 is installed
  • OR systemd-32bit-228-150.53 is installed
  • OR systemd-bash-completion-228-150.53 is installed
  • OR systemd-sysvinit-228-150.53 is installed
  • OR udev-228-150.53 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND Package Information
  • ghostscript-9.52-23.39 is installed
  • OR ghostscript-x11-9.52-23.39 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND ansible-2.4.6.0-3.6 is installed
  • BACK